Practice Test - 1 (25 Questions) Flashcards

1
Q

Which of the following describes the cloud design principle of scalability?

  • The ability to route incoming client requests between multiple application servers
  • The ability to segment physical resources into multiple virtual partitions
  • The ability to automatically increase available compute resources to meet growing user demand
  • The ability to reduce production costs by spreading capital expenses across many accounts scalable deployment will automatically “scale up” its capacity to meet growing user demand without the need for manual interference.
A
  • The ability to automatically increase available compute resources to meet growing user demand
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How does AWS ensure that no single customer consumes an unsustainable proportion of available resources?

  • AWS allows customers to consume as much as they’re willing to pay for, regardless of general availability.
  • AWS imposes default limits on the use of its services by Basic account holders; Premium account holders face no limits.
  • AWS imposes default limits on the use of its service resources but allows customers to request higher limits.
  • AWS imposes hard default limits on the use of its service resources.
  • AWS applies usage limits on most features of its services. However, in many cases, you can apply for a limit to be lifted.
A
  • AWS imposes default limits on the use of its service resources but allows customers to request higher limits.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which of these is a designation for two or more AWS data centers within a single geographic area?

  • Region
  • Geo-unit
  • Availability Zone
  • Network subnet
A
  • Availability Zone
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following AWS compute services offers an administration experience that most closely resembles the way you would run physical servers in your own local data center?

  • Lambda
  • Elastic Compute Cloud (EC2)
  • Elastic Container Service (ECS)
  • Simple Storage Service (S3)
    ble.
A
  • Lambda
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which of the following will provide the most reliable and scalable relational database experience on AWS?

  • DynamoDB
  • Running a database on an EC2 instance
  • Redshift
  • Relational Database Service (RDS)
A
  • Relational Database Service (RDS)

RDS offers a managed and highly scalable database environment for most popular relational database engines (including MySQL, MariaDB, and Oracle)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is Amazon Kinesis?

  • A service that permits processing and analyzing of real-time video and data streams
  • A service that permits queries against data stored in Amazon S3
  • A NoSQL database engine
  • A Greece-based Amazon Direct Connect service partner
  • Amazon Kinesis allows processing and analyzing of real time video and data streams.
A
  • A service that permits processing and analyzing of real-time video and data streams
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which of the following are signs of a highly available application? (Select TWO)

  • A failure in one geographic region will trigger an automatic failover to resources in a different region.
  • Virtualized hypervisor-driven systems are deployed as mandated by company policy.
  • Spikes in user demand are met through automatically increasing resources.
  • Applications are protected behind multiple layers of security.
A
  • A failure in one geographic region will trigger an automatic failover to resources in a different region.
  • Spikes in user demand are met through automatically increasing resources.

Security and virtualization are both important characteristics of successful cloud workloads, but neither will directly impact availability.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which of the following best describes Platform as a Service products?

  • Services that hide infrastructure complexity behind a simple interface
  • Services that give you direct control over underlying compute and storage resources
  • Platforms that allow developers to run their code over short periods on cloud servers
  • that provide a service to end users through a public network
A
  • Services that hide infrastructure complexity behind a simple interface

IaaS products provide full infrastructure access, SaaS products provide end-user services, and serverless architectures (like AWS Lambda) let developers run code on cloud servers.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which of the following usage will always be cost-free even after your account’s Free Tier has expired? (Select TWO.)

  • 10 custom monitoring metrics and 10 alarms on Amazon CloudWatch
    • 500 MB/month of free storage on the Amazon Elastic Container Registry (ECR)
    • One million API calls/month on Amazon API Gateway
    • 10 GB of data retrievals from Amazon Glacier per month
A
  • 10 custom monitoring metrics and 10 alarms on Amazon CloudWatch
  • 10 GB of data retrievals from Amazon Glacier per month

One million API calls/month and ECR free storage are available only under the Free Tier.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which of the following is a limitation of the AWS Simple Monthly Calculator?

  • The pricing is seldom updated and doesn’t accurately reflect current pricing.
  • You’re not able to specify specific configuration parameters.
  • Not all AWS services are included.
  • You can calculate resource use for only one service at a time.
A
  • Not all AWS services are included.

You can, in fact, calculate costs for a multiservice stack. The calculator pricing is kept up-to-date. You can specify very detailed configuration parameters.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Is it always possible to request service limit increases from AWS?

  • No. A limit can never be increased.
  • Yes. All service limits can be increased.
  • No. Some service limits are hard.
  • Service limits are defaults. They can be increased or decreased on demand.
A
  • No. Some service limits are hard.

While most service limits are soft and can be raised on request, there are some service limits that are absolute.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the main difference between the goals of Cost Explorer and of cost and usage reports?

Cost Explorer lets you set alerts that are triggered by billing events, while cost and usage reports help you visualize system events.

  • Cost Explorer displays visualizations of high-level historical and current account costs, while cost and usage reports generate granular usage reports in CSV format.
  • Cost and usage reports are meant to alert you to malicious intrusions, while Cost Explorer displays visualizations of high-level historical and current account costs.
  • Cost and usage reports display visualizations of high-level historical and current account costs, while Cost Explorer generates granular usage reports in CSV format.
A
  • Cost Explorer displays visualizations of high-level historical and current account costs, while cost and usage reports generate granular usage reports in CSV format.

Billing events aren’t triggers for alerts. Nothing in this chapter discusses intrusion events

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which of these tools lets you design graphs within the browser interface to track your account spending?

  • Reports
  • Budgets
  • Cost Explorer
  • Consolidating Billing
A
  • Cost Explorer

Budgets are used to set alerts. Reports provide CSV-formatted data for offline processing. Consolidated Billing (now migrated to AWS Organizations) is for administrating resources across multiple AWS accounts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Your company enrolled in the Developer Support plan and, through the course of one month, consumed $4,000 USD of AWS services. How much will the support plan cost the company for the month?

  • $120
  • $100
  • $480
  • $29
A
  • $120

The Developer plan costs the greater of $29 or 3 percent of the monthly usage. In this case, 3 percent of the month’s usage is $120.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which of the following designations would refer to the AWS US West (Oregon) Region?

  • us-west-2
  • us-west-2a
  • us-west-2b
  • us-east-1
A
  • us-west-2

The letter (a, b…) at the end of a designation indicates an Availability Zone. us-east-1 would never be used for a Region in the western part of the United States.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which of the following is an AWS Region for which customer access is restricted?

  • AWS Admin
  • US-DOD
  • Asia Pacific (Tokyo)
  • AWS GovCloud
A
  • AWS GovCloud

The AWS GovCloud Region is restricted to authorized customers only. Asia Pacific (Tokyo) is a normal Region. AWS Admin and US-DOD don’t exist (as far as we know, at any rate).

17
Q

What is the primary function of the AWS IAM service?

  • Federated access management
  • Access key management
  • SSH key pair management
  • Identity and access management
A
  • Identity and access management

Identity and Access Management (IAM) is primarily focused on helping you control access to your AWS resources. KMS handles access keys. EC2 manages SSH key pairs. While IAM does touch on federated management, that’s not its primary purpose.

18
Q

Which of the following should you do to secure your AWS root user? (Select TWO.)

  • Assign the root user to the “admins” IAM group
  • Enable MFA.
  • Use the root user for day-to-day administration tasks.
  • Create a strong password.
A
  • Enable MFA.
  • Create a strong password.

The root user should not be used for day-to-day admin tasks—even as part of an “admin” group. The goal is to protect root as much as possible

19
Q

Which of the following is the most accurate description of an AWS Availability Zone?

  • One or more independently powered data centers running a uniform hardware host type
  • All the data centers located within a broad geographic area
  • The infrastructure running within a single physical data center
  • One or more independently powered data centers running a wide range of hardware host types
A

One or more independently powered data centers running a wide range of hardware host types

“Data centers running uniform host types” would describe an edge location. The data centers within a “broad geographic area” would more closely describe an AWS Region. AZs aren’t restricted to a single data center.

20
Q

What is the primary goal of auto scaling?

  • To ensure the long-term reliability of a particular physical resource
  • To ensure the long-term reliability of a particular virtual resource
  • To ensure that a predefined service level is maintained regardless of external demand or instance failures
  • To orchestrate the use of multiple parallel resources to direct incoming user requests
A

To ensure that a predefined service level is maintained regardless of external demand or instance failures

Auto scaling doesn’t focus on any one resource (physical or virtual) because it’s interested only in the appropriate availability and quality of the overall service. The job of orchestration is for load balancers, not autoscalers.

21
Q

Which of the following AWS services are not likely to benefit from Amazon edge locations? (Select TWO.)

  • RDS
  • Elastic Block Store (EBS)
  • CloudFront
  • EC2 load balancers
A
  • RDS
  • EC2 load balancers

RDS database instances and Lambda functions are not qualified CloudFront origins. EC2 load balancers can be used as CloudFront origins.

22
Q

Question 23
1 / 1 pts
Where will you find information on the limits AWS imposes on the ways you can use your account resources?

  • AWS Acceptable Use Dashboard
  • AWS Acceptable Use Policy
  • AWS User Agreement Policy
  • AWS Acceptable Use Monitor
A
  • AWS Acceptable Use Policy

The correct document (and web page https://aws.amazon.com/aup/ (https://aws.amazon.com /aup/)) for this information is the AWS Acceptable Use Policy.

23
Q

Question 23
1 / 1 pts
Where will you find information on the limits AWS imposes on the ways you can use your account resources?

  • AWS Acceptable Use Dashboard
  • AWS Acceptable Use Policy
  • AWS User Agreement Policy
  • AWS Acceptable Use Monitor
A
  • AWS Acceptable Use Policy

The correct document (and web page https://aws.amazon.com/aup/ (https://aws.amazon.com /aup/)) for this information is the AWS Acceptable Use Policy.

24
Q

Question 24
1 / 1 pts
What is the primary function of the AWS IAM service?
- Federated access management

  • Access key management
  • SSH key pair management
  • Identity and access management
A
  • Identity and access management

Identity and Access Management (IAM) is primarily focused on helping you control access to your AWS resources. KMS handles access keys. EC2 manages SSH key pairs. While IAM does touch on federated management, that’s not its primary purpose.

25
Q

Which of the following should you do to secure your AWS root user? (Select TWO.)

  • Assign the root user to the “admins” IAM group
  • Enable MFA.
  • Use the root user for day-to-day administration tasks.
  • Create a strong password.
A
  • Enable MFA.
  • Create a strong password.

The root user should not be used for day-to-day admin tasks—even as part of an “admin” group. The goal is to protect root as much as possible.